threat-intel ISC Stormcast For Thursday, August 27th, 2026 https://isc.sans.edu/podcastdetail/10070, (Thu, Aug 27th) The ISC Stormcast highlighted a significant increase in malicious email campaigns targeting financial institutions, leveraging sophisticated phishing techniques and exploiting vulnerabilities in legacy systems. The threat landscape is evolving rapidly, with attackers increasingly focusing on exploiting older, unpatched… SANS Internet Storm Center · 3d ago High phishingsupply chainvulnerability
threat-intel ToxicPanda Banking Trojan Matures into Enterprise Threat ToxicPanda, a banking Trojan, has evolved into a more sophisticated enterprise threat, expanding its reach beyond individual banking apps to compromise entire Android devices and potentially access corporate resources. T… Dark Reading · 6d ago High LAITPObankingmobileenterprise
data-breach Nearly 750k had financial info, SSNs leaked in South Carolina loan company breach A South Carolina-based debt consolidation loan company, Heights Finance, suffered a significant data breach exposing the financial details and personal identification information of nearly 750,000 customers. The breach s… The Record · Aug 17, 2026 High data breachsocial securitybanking
threat-intel Investigation of banking hack leads to arrests in Germany, Brazil A coordinated investigation in Germany and Brazil has resulted in arrests and asset seizures linked to a €30 million banking hack. The hackers exploited a vulnerability in a payment provider to drain funds from German ac… The Record · Aug 14, 2026 High DEBRESbankingcybercrimemoney laundering
threat-intel Mission-Driven Security: Inside a Global Bank's Defense This article explores the evolving role of the Chief Information Security Officer (CISO) at Standard Chartered, a global bank. The piece highlights Cezary Piekarski's journey from a technical background to a strategic le… Dark Reading · Aug 14, 2026 High cisocybersecuritybanking
threat-intel IT threat evolution in Q2 2026. Mobile statistics In Q2 2026, mobile malware attacks continued to decline, with Trojan-Banker applications representing the most prevalent threat. Despite a drop in new Trojan variants, the landscape remained dominated by Mamont banking T… Securelist · Aug 10, 2026 Medium mobilemalwarebanking
threat-intel Charities remain locked out of CAF Bank online accounts Charities are unable to access their online accounts with CAF Bank due to a security incident. The issue stems from a cyberattack that has left the bank’s systems offline, preventing customers from managing their funds a… The Register · Jul 31, 2026 High cyberattackbankingcharity
threat-intel Charity bank pulls online services over third-party software flaw A charity bank in the UK has temporarily shut down its online services due to a vulnerability in third-party software. The issue stems from a flaw within a specific software component, leading to potential security risks… The Register · Jul 28, 2026 Medium vulnerabilitybankingsecurity
threat-intel ISC Stormcast For Monday, July 20th, 2026 https://isc.sans.edu/podcastdetail/10014, (Mon, Jul 20th) The ISC Stormcast highlighted a significant increase in malicious email campaigns targeting financial institutions, leveraging sophisticated phishing techniques and exploiting vulnerabilities in legacy systems. The threa… SANS Internet Storm Center · Jul 20, 2026 High phishingshadowratvulnerability
threat-intel SCMBANKER Malware Uses ClickFix Lures to Target Mexican Banking Users A new banking fraud operation, tracked as REF6045, is targeting Mexican banks, fintech companies, and cryptocurrency exchanges using a malware toolset called SCMBANKER. The operation leverages fake CAPTCHA verification p… The Hacker News · Jul 8, 2026 High MXbankingmalwarephishing
threat-intel RedWing MaaS Packages Android Bank Fraud as a Telegram Rental Service A new Android malware operation, RedWing, is being sold on Telegram as a ready-made bank fraud service. Developed by a Russian threat actor group, RedWing allows even unskilled criminals to steal banking logins and one-t… The Hacker News · Jul 7, 2026 High RUandroidmalwarefraud
malware NFCShare Android malware spreads via fake banking app updates on GitHub A new variant of the NFCShare Android malware is spreading through fake updates for banking apps hosted on GitHub, targeting financial institutions across Europe. The malware leverages NFC technology to steal payment car… BleepingComputer · Jun 8, 2026 High ITSPGEnfcandroidbanking
supply-chain Malicious Sicoob NuGet Steals Banking Credentials as npm Packages Target Cloud Secrets A malicious NuGet package, 'Sicoob.Sdk,' disguised as a C# SDK for Sicoob, Brazil's largest cooperative financial system, was discovered to be stealing client IDs and PFX certificates. This allowed unauthorized access to… The Hacker News · May 29, 2026 High BRsupply-chaincredentialsbanking